Privacy Policy

The protection of your data and the preservation of your privacy is very important to us. Below we inform you about the collection and use of personal data when using our website.

General
The abcpremium GmbH attaches the highest importance to the protection of your privacy as a user. This applies in particular to the processing of personal data. For the use of our website, it is not necessary that you disclose personal information. In certain cases, however, we will need your name and address, as well as other information, so that we can process your order. Where necessary, we will inform you accordingly. In addition, we only store and process data that you voluntarily or automatically make available to us.

SSL encryption
This site uses SSL encryption for security reasons and to protect the transmission of sensitive content, such as the requests you send us. An encrypted connection can be recognized by the lock symbol in the browser line and by the fact that the address line of the browser changes from "http://" to "https://". If SSL encryption is enabled, the data you submit to us can not be read by third parties.

Responsible for the processing of data is:
Marc Zimmermann
Waldhoferstr. 19
69123 Heidelberg
Deutschland
[email protected]

1. Access data and hosting

You can visit our websites without giving any personal information. Each time a web page is called, the web server merely automatically stores a so-called server log file, which can be used, for example contains the name of the requested file, your IP address, the date and time of the retrieval, the amount of data transferred and the requesting provider (access data), and documents the retrieval.

These access data are evaluated exclusively for the purpose of ensuring a trouble-free operation of the site as well as the improvement of our offer. In accordance with Art. 6 para. 1 P. 1 lit. f GDPR the preservation of our legitimate interests, which predominate in the context of a weighing up of interests, in a correct presentation of our offer. All access data will be deleted no later than seven days after the end of your page visit.

Logging and Reporting
We automatically collect and store in our server log files some of the information usually transmitted by the browser, as far as your browser provides them. These data can not be assigned by us to specific persons. A merge of this data with other data sources will not be done.

Hosting services by a third party
Within the framework of a processing on our behalf, a third party provider provides the services for hosting and displaying the website. This serves to safeguard our legitimate interests, which are predominantly justified in the interests of weighing up our interests, in order to correctly present our offer. All data collected as part of the use of this website or in designated forms in the online shop as described below will be processed on its servers. Processing on other servers takes place only in the frame explained here.

This service provider is located within a country of the European Union or the European Economic Area.

Content Delivery Network
For the purpose of a shorter loading time, we use for some offers a so-called Content Delivery Network ("CDN") . This service provides content, e.g. large media files, via regionally distributed servers of external CDN service providers. For this reason, access data will be processed on the servers of these service providers. We engage our service providers on the basis of processing on our behalf. If you have any questions about our service providers and the basis of our cooperation with them, please use the contact option described in this privacy policy.

2. Data collection and use for processing the contract, establishing contact and for opening a customer account

Zum Zwecke der Vertragsabwicklung (inkl. Anfragen zu und Abwicklung von ggf. bestehenden Gewährleistungs- und Leistungsstörungsansprüchen sowie etwaiger gesetzlicher Aktualisierungspflichten) gemäß Art. 6 Abs. 1 S. 1 lit. b DSGVO erheben wir personenbezogene Daten, wenn Sie uns diese im Rahmen Ihrer Bestellung freiwillig mitteilen. Pflichtfelder werden als solche gekennzeichnet, da wir in diesen Fällen die Daten zwingend zur Vertragsabwicklung benötigen und wir ohne deren Angabe die Bestellung nicht versenden können. Welche Daten erhoben werden, ist aus den jeweiligen Eingabeformularen ersichtlich.

Weitere Informationen zu der Verarbeitung Ihrer Daten, insbesondere zu der Weitergabe an unsere Dienstleister zum Zwecke der Bestellungs-, Zahlungs- und Versandabwicklung, finden Sie in den nachfolgenden Abschnitten dieser Datenschutzerklärung. Nach vollständiger Abwicklung des Vertrages werden Ihre Daten für die weitere Verarbeitung eingeschränkt und nach Ablauf der steuer- und handelsrechtlichen Aufbewahrungsfristen gemäß Art. 6 Abs. 1 S. 1 lit. c DSGVO gelöscht, sofern Sie nicht ausdrücklich in eine weitere Nutzung Ihrer Daten gemäß Art. 6 Abs. 1 S. 1 lit. a DSGVO eingewilligt haben oder wir uns eine darüber hinausgehende Datenverwendung vorbehalten, die gesetzlich erlaubt ist und über die wir Sie in dieser Erklärung informieren.

Merchandise management system
We use merchandise management systems of external service providers for order and contract processing. We engage our service providers on the basis of processing on our behalf. If you have any questions about our service providers and the basis of our cooperation with them, please use the contact option described in this privacy policy.

Customer account
Insofar as you have given your consent to this in accordance with Art. 6 (1) (a) GDPR by deciding to open a customer account, we will use and store your data for the purpose of opening the customer account as well as for further future orders on our website. Deletion of your customer account is possible at any time and can be done either by sending a message to the contact option described in this privacy policy or via a function provided for this purpose in the customer account. After deletion of your customer account, your data will be deleted unless you have expressly consented to further use of your data in accordance with Art. 6 (1) (a) GDPR or we reserve the right to use data beyond this, which is permitted by law and about which we inform you in this privacy policy.

Establishing contact
As part of our customer communication, we collect personal data in order to process your enquiries in accordance with Art. 6 (1) (b) GDPR if you voluntarily provide us with this data when contacting us (e.g. via contact form or e-mail). Mandatory fields are marked as such, as in these cases we necessarily need the data to process your enquiry. Which data is collected can be seen from the respective input forms. After your enquiry has been fully processed, your data will be deleted unless you have expressly consented to further use of your data in accordance with Art. 6 (1) (a) GDPR or we reserve the right to use data beyond this, which is permitted by law and about which we inform you in this privacy policy.

3. Data processing for the purpose of shipment

We forward your data to the shipping company within the scope required for the delivery of the ordered goods according to Art. 6 (1) (b) GDPR.

The same applies to the transfer of data to our manufacturers or wholesalers where they take over the shipment for us (drop shipping). These are considered to be shipping companies within the meaning of this privacy policy.

Data transmission to a shipping provider for the purpose of shipment notification
Provided that you have given us your explicit consent, during or after your order, we will forward your phone number in accordance with Art. 6 (1) (a) GDPR to the selected shipping provider in order to enable them to contact you for the purpose of shipment notification or coordination prior to shipment. This consent may be withdrawn at any time by sending a message to the contact information described in this privacy policy or directly to the shipping provider using the contact address listed below. After consent withdrawal, we will delete the data you have provided for this purpose, unless you have expressly consented to further use of your data or we have reserved the right to use your data for other purposes which are permitted by law and about which we inform you in this privacy policy.

DHL Paket GmbH
Sträßchensweg 10
53113 Bonn
Deutschland

4. Data processing for the purpose of payment

As part of the payment process in our online shop, we work together with these partners: technical service provider, credit institution, payment service provider.

Data processing for the purpose of transaction processing
Depending on the selected payment method, we forward the data necessary for processing the payment transaction to our technical service providers, who act for us on the basis of processing on our behalf or to the authorised credit institutions or to the selected payment service provider insofar as this is necessary for the payment process. This serves the fulfilment of the contract according to Art. 6 (1) (b) GDPR. In certain cases, payment service providers collect the data required for processing the payment themselves, e.g. on their own website or via technical solution within the ordering process. In this respect, the privacy policy of the respective payment service provider applies. If you have any questions about our payment processing partners and the basis of our cooperation with them, please use the contact option described in this privacy policy.

Data processing for the purpose of fraud prevention and optimisation of our payment processes
We may forward other data to our service providers, which they use for the purpose of fraud prevention and to optimise our payment processes (e.g. invoicing, processing of contested payments, accounting support) together with the data necessary to process the payment as our processors. This serves to safeguard our legitimate interests in fraud prevention or an efficient payment management in accordance with Art. 6 (1) (f) GDPR that are overriding in the process of balancing of interests.

Payment processing with Stripe
We offer the option of processing the payment transaction via the payment service provider Stripe, Legal Process, 510, Townsend St., San Francisco, CA 94103 (Stripe). This corresponds to our legitimate interest in offering an efficient and secure payment method (Art. 6 Para. 1 lit. f GDPR). In this context, we pass on the following data to a stripe, insofar as this is necessary for the fulfillment of the contract (Art. 6 Para. 1 lit b. DSGVO).

Name of Cardholder
E-mail address
customer number
Order number
Bank details
credit card details
Validity period of the credit card
Credit Card Verification Number (CVC)
Date and time of the transaction
transaction total
Vendor name
Location

The processing of the data specified under this section is not required by law or contract. Without the transmission of your personal data, we cannot make a payment via Stripe. In this case you have the option to choose another payment method.

Stripe takes on a dual role as controller and processor in data processing activities. As the controller, Stripe uses your transmitted data to fulfill regulatory obligations. This corresponds to Stripe's legitimate interest (according to Art. 6 Para. 1 lit. f GDPR) and serves to execute the contract (according to Art. 6 Para. 1 lit. b GDPR). We have no influence on this process.

Stripe acts as a processor in order to be able to complete transactions within the payment networks. As part of the order processing relationship, Stripe acts exclusively according to our instructions and has been contractually obliged to comply with the data protection regulations within the meaning of Art. 28 DSGVO.

The following payment options are available with Stripe:
-Visa, Mastercard, American Express und China UnionPay
-Cartes Bancaires
-Link
-Apple Pay
-Google Pay
-Alipay
-WeChat Pay
-Bancontact
-EPS
-Giropay
-iDEAL
-Przelewy24
-Klana Sofort
-Klarna
-BLIK
-SEPA-Lastschriftverfahren (Direct Debit)

Stripe has implemented compliance measures for international data transfers. These apply to all worldwide activities in which Stripe processes personal data of natural persons in the EU. These measures are based on the EU Standard Contractual Clauses (SCCs).

You can find more information on how to object to and remove Stripe from: https://stripe.com/privacy-center/legal

Your data will be stored by us until the payment has been processed. This includes the time it takes to process refunds, claims management and fraud prevention. According to [§ 147 AO / § 257 HGB, we have a statutory retention period of 10 years for the following documents: invoices, delivery notes. 6 years for order & confirmation.

Legal Notice address:
Stripe Payments Europe Limited 1 Grand Canal Street Lower, Grand Canal Dock, Dublin, D02 H210, Ireland Attention: Stripe Legal

Payment via Klarna
In order to be able to offer you Klarna’s payment options, we will pass to Klarna certain of your personal information, such as contact and order details, in order for Klarna to assess whether you qualify for their payment options and to tailor the payment options for you. General information on Klarna you can find here .

Your personal data is handled in accordance with applicable data protection law and in accordance with the information in Klarnas privacy statement .


Credit check and scoring for purchase on account
The credit agencies process the data received and also use them for the purpose of profiling (scoring) to provide their contractual partners in the European Economic Area and in Switzerland and possibly other third countries (if there is an adequacy decision by the European Commission on these) information, among other things for assessing the Submit the creditworthiness of natural persons.
A list of the credit reporting agencies we use can be found here < / a>.


6. Cookies and web analytics



Cookiebot Consent Management Plattform
On our website we use Cookiebot to inform you about the technologies we use on our website and to obtain, manage and document your consent to the processing of your personal data by these technologies. This is required under Art. 6 (1) (c) GDPR to fulfil our legal obligation under Art. 7 (1) 1 GDPR to be able to prove your consent to the processing of your personal data, to which we are subject. The consent management service Cookiebot is an offer from Cybot A/S, Havnegade 39, 1058 Copenhagen, Denmark, which processes your data on our behalf.
After submitting your cookie declaration on our website, Cookiebot's web server stores your anonymized IP address, the date and time of your declaration, browser information, the URL from which the declaration was sent, information about your consent behaviour and an anonymous random key. In addition, a "CookieConsent" cookie is used, which contains information about your consent behaviour and the key. Your data will be deleted after twelve months, unless you have expressly consented to further use of your data in accordance with Art. 6 (1) (a) GDPR or we reserve the right to use your data for other purposes that are legally permitted and about which we inform you in this privacy policy.



7. PlugIns

8. Contact possibilities and your rights

You have the following rights:

  • in accordance with Art. 15 GDPR, the right to demand information on the personal data processed by us in the scope specified there;
  • in accordance with Art. 16 GDPR, the right to demand immediate correction of incorrect or completed personal data stored by us;
  • according to Art. 17 GDPR the right to demand the deletion of your personal data stored by us, as far as the further processing of - to exercise the right to freedom of expression and information;
    - to fulfill a legal obligation;
    - for reasons of public interest or
    - to assert, exercise or defend legal claims
    is required;
  • according to Art. 18 GDPR the right to demand the restriction of the processing of your personal data, as far as - the accuracy of the data is disputed by you;
    - the processing is illegal, but you reject its deletion;
    - we no longer need the data, but you need it to assert, exercise or defend legal claims or
    - you filed an objection against the processing in accordance with Art. 21 GDPR;
  • in accordance with Art. 20 GDPR the right to receive your personal data provided to us in a structured, common and machine-readable format or to request the transfer to another person responsible;
  • according to Art. 77 GDPR the right to complain to a supervisory authority. As a rule, you can contact the supervisory authority of your usual place of residence or work or our company headquarters.

Bei Fragen zur Erhebung, Verarbeitung oder Nutzung Ihrer personenbezogenen Daten, bei Auskünften, Berichtigung, Sperrung oder Löschung von Daten sowie Widerruf erteilter Einwilligungen oder Widerspruch gegen eine bestimmte Datenverwendung wenden Sie sich bitte direkt an uns über die Kontaktdaten in unserem Imprint.

Right to information and contradiction of data
Sie haben jederzeit das Recht auf unentgeltliche Auskunft über Ihre gespeicherten Daten sowie das Recht auf Berichtigung, Löschung bzw. Sperrung. War eine Einwilligung zur Nutzung Ihrer personenbezogenen Daten erforderlich, können Sie diese jederzeit per Post an die abcpremium GmbH, Waldhofer Str. 19, 69123 Heidelberg oder per E-Mail an [email protected] widerrufen.

External Data Protection Officer:
Herr Peter Meister
Walldorferstr. 26
69226 Nussloch
E-Mail: [email protected]

Of course you can contact as a concerned to the regional offices for data protection supervision.

The country commissioner for data protection
Königstraße 10A
70173 Stuttgart
Germany
Tel.: +49 711 615 54 10
E-Mail: [email protected]

Contradiction right
As far as we are concerned with the preservation of our legitimate interests in the context of a weighing up of interests process personal data as explained above, you can object to this processing with effect for the future. If the processing is for the purpose of direct marketing, you can exercise this right at any time as described above. Insofar as the processing takes place for other purposes, you are only entitled to a right of objection if there are reasons that arise from your particular situation.

After exercising your right to object, we will not further process your personal data for these purposes, unless we can demonstrate compelling legitimate grounds for processing that outweigh your interests, rights and freedoms, or if the processing of the assertion, exercise or defense of legal claims.

This does not apply if the processing is for direct marketing purposes. Then we will not process your personal data for this purpose.



Safety instructions
We assure you that we store your personal data with the help of all technical and organizational possibilities so that they are not accessible to third parties. When communicating by e-mail, we can not guarantee complete data security, so we recommend that you send confidential information by post.

Download files on our website
Electronic files made available by us for download have been test for malware, e.g. electronic viruses. Due to the actual technical conditions, however, it can not be ruled out that, independently of this, a download of the file (s) provided by us will at the same time also result in malicious software reaching your respective computer system. It is therefore essential that you protect your computer system against the malicious software that exists for your system. Please inform yourself accordingly with the manufacturer of your computer system or the respective operating system

Status: 30.08.2022